2026/06/15 – 2026/12/15
Kravprofil
We are looking for a highly experienced Web Application Firewall (WAF) expert to take a leading role in designing, establishing, and operationalizing a modern WAF service based on Cloudflare. This is a senior consulting assignment with strong influence on architecture, security standards, and onboarding of business‑critical applications.
About the Assignment
The assignment focuses on creating a scalable and robust WAF service, defining architecture and best practices, and supporting early application onboarding. The consultant will act as a trusted expert, challenging existing approaches where needed and guiding stakeholders toward secure and efficient implementations.
The initial scope is 4 months for service creation, with an expected extension to 6 months or more to support application onboarding and optimization.
Responsibilities
- Design and implement enterprise-grade Cloudflare WAF solutions
- Define and document security architecture, standards, and best practices
- Produce High-Level Design (HLD) and Low-Level Design (LLD) documentation
- Create, maintain, and optimize baseline WAF rules and security policies
- Analyze web traffic and continuously tune rules to minimize false positives
- Support deployment, testing, and operational handover of WAF configurations
- Collaborate closely with application, network, and security teams
- Develop runbooks, SOPs, and deliver knowledge transfer sessions
Required Competence
- Proven hands-on experience with Cloudflare WAF in enterprise environments
- Strong understanding of web application security and OWASP Top 10
- Deep knowledge of HTTP/HTTPS, APIs, and modern web architectures
- Extensive experience designing and documenting HLD/LLD security architectures
- Strong analytical and troubleshooting capabilities
- Ability to communicate effectively with both technical and non-technical stakeholders
- Senior consulting mindset with focus on delivery and risk reduction
Meritorious Experience
- Experience with other WAF platforms (Akamai, F5, etc.)
- Scripting or automation skills (Python, Bash)
- Experience working with SIEM/SOC teams and log analysis
- Cloud platform experience (Azure, AWS, GCP)
Övrigt
Practical Information
Start: ASAP (planned start 15 June 2026)
Duration: 4–6 months (likely extension)
Workload: Full-time (40h/week)
Location: Malmö or remote
Language: English
Uppdragsstart: 2026-06-15
Distansarbete: Ja
Uppdragslängd: 6 months
Område: Sweden
Svar senast: 2026-06-12
Ansök nu